Syspeace’s server protection is an anti-hacking software, for brute force attacks specifically. The Syspeace system is a Host-based Intrusion Detection and Prevention System (HIDPS).
Rules let you configure how certain accounts, domains or login method might change the requirements for Syspeace to notice an attacker, or raise the lockout period.
Responsive rules ensure block changes take effect immediately – including reshaping existing blocks and adding blocks retroactively.
You further customise it through local whitelisting and local, and global, blacklisting of certain IP addresses. Syspeace now also supports geo-blocking, stopping any login attempt from a specific region.
Syspeace’s Remote Status allow you to manage and view all your servers from one place
Syspeace might be a bit more popular than SSHGuard. We know about 1 link to it since March 2021 and only 1 link to SSHGuard. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.
There are now better defensive tools (I use https://sshguard.net/); not that there are any accounts on this system that are vulnerable, but it does keep the relevant logfile from growing to astronomical size. Source: about 4 years ago
Another thing we did with an RDP farm at an acquisition is have them install a host-based IDS/IPS like SysPeace. It has a terrible name but is really cheap (~$100 per server) and can block connections from a defined list of countries, block IPs after X number of login failures, etc. There are no magic bullets but it made us feel a little safer. Source: almost 4 years ago
Fail2ban - Intrusion prevention framework
RdpGuard - RdpGuard allows you to protect your Remote Desktop (RDP), POP3, FTP, SMTP, IMAP, MSSQL, MySQL, VoIP/SIP from brute-force attacks by blocking attacker's IP address. Fail2Ban for Windows.
Denyhosts - The idea of denying access to SSH servers is nothing new and I was inspired by many other scripts...
IPBan - Block hacking attempts on RDP, SSH, SMTP and much more
Anti DDoS Guardian - Stops RDP Brute force attack as well as DDoS agaist IIS, FTP, SMTP, and several more.
SpyLog - Monitor logs from several sources and execute actions based on some rules.